Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfblockerng stops working….

    Scheduled Pinned Locked Moved pfBlockerNG
    6 Posts 3 Posters 1.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      micropone
      last edited by

      now another issue with the blocker.. when I reboot my box and check a site with ads blocker works great.. after 1 hr of up time.. blocker stops working till I reboot again … from the rules nothing changed the config of system also nothing changed... seems to die.

      .im thinking its the rule order that somehow switches...
      pfblocker.PNG
      pfblocker.PNG_thumb

      1 Reply Last reply Reply Quote 0
      • BBcan177B
        BBcan177 Moderator
        last edited by

        DNSBL does not use Firewall Rules for blocking. DNSBL uses the DNS Resolver (Unbound).

        IPv4/6 blocking does however use firewall rules… There is not enough information here to diagnose this issue... What happens after one hour? Did you review the system logs? Resolver logs? pfblockerng logs?

        "Experience is something you don't get until just after you need it."

        Website: http://pfBlockerNG.com
        Twitter: @BBcan177  #pfBlockerNG
        Reddit: https://www.reddit.com/r/pfBlockerNG/new/

        1 Reply Last reply Reply Quote 0
        • M
          micropone
          last edited by

          using my WAn (comcast) pfb DNSBLIP has many ip address in it… have no clue how the ip addresses got there..see pics

          after 1 hr when cron runs the pfblocker stops working.. with no config changes made. even sites on bbcan's list show up when entering each site to my browser.

          blocking.PNG
          blocking.PNG_thumb
          block2.PNG
          block2.PNG_thumb

          1 Reply Last reply Reply Quote 0
          • RonpfSR
            RonpfS
            last edited by

            Did you look at the pfBlockerNG and system logs ?

            2.4.5-RELEASE-p1 (amd64)
            Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
            Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

            1 Reply Last reply Reply Quote 0
            • M
              micropone
              last edited by

              FIXED… I reinstalled and reconfigured the whole package....

              and the logs were empty.i'll keep you guys updated...

              1 Reply Last reply Reply Quote 0
              • BBcan177B
                BBcan177 Moderator
                last edited by

                @micropone:

                using my WAn (comcast) pfb DNSBLIP has many ip address in it… have no clue how the ip addresses got there..

                In DNSBL, you added the "DNSBL IP" option that collects any IP address that's found in a DNSBL Feed and adds it to a block firewall rule.  All DNSBL Domains are blocked via DNS Resolver (Unbound).

                I don't recommend to use the Firehole Level 1 for Outbound. That list contains Bogon IP Addresses…

                "Experience is something you don't get until just after you need it."

                Website: http://pfBlockerNG.com
                Twitter: @BBcan177  #pfBlockerNG
                Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.